Microsoft’s Security Response Center has recorded CVE-2026-21235 as an Elevation of Privilege (EoP) vulnerability in the Windows Graphics Component, a class of bugs that routinely offers attackers a powerful local escalation primitive; the vendor entry exists in the MSRC “Update Guide” but — as...
Microsoft has published an advisory for CVE-2026-20822: a use‑after‑free vulnerability in the Microsoft Graphics Component that can be triggered by an authenticated local user to elevate privileges on affected Windows hosts. Background
The Microsoft Graphics Component (commonly referenced as...